Skip to main content

Tag: speculative execution

4 articles

Computer chip on laboratory bench surrounded by scientific instruments.

New Spectre Variant BTR Exploits Linux Memory Despite Existing Defenses

Meet Branch Target Reuse (BTR), a new Spectre variant that cleverly exploits Linux memory, dodging existing defenses and leaving multiple JIT engines and the Linux kernel vulnerable. This sneaky attack uses a four-step sequence to tap into the CPU's indirect branch prediction structures.

Analyst 207
Rows of computer servers and networking equipment in a dimly lit data center interior.

New Spectre v2 Variant Exploits Linux Systems, Leaks Root Password Hashes

Researchers have uncovered a new Spectre v2 variant, dubbed Branch Target Reuse (BTR), that can exploit Linux systems and leak sensitive data, including root password hashes, in a matter of minutes. This attack can be executed in as little as 3-5 minutes, leaving systems vulnerable to potential breaches.

Analyst 207
Researcher examines laptop screen in university lab setting.

MIT Researchers Expose TONTOU Attack Bypassing Spectre Defenses on Intel, AMD CPUs

MIT researchers have uncovered a clever new attack, dubbed TONTOU, that can bypass Spectre defenses on Intel and AMD CPUs, revealing a practical exploit on AMD Zen 2. This innovative technique, presented at DEF CON 34, challenges current security assumptions and opens up new avenues for exploration.

Analyst 207
Computer processor on a laboratory bench with scientific instruments in the background.

Researchers Expose TONTOU Attack Bypassing Spectre v2 Fixes

Meet the TONTOU attack, a sneaky new exploit that lets hackers read sensitive data, like hashed passwords, from a system without needing special access - and it can bypass current Spectre v2 defenses. Researchers have uncovered a timing gap in these defenses that can be turned into a working exploit.

Analyst 207